HIGH

CVE-2021-40450

Microsoft Windows 10 1809 2021-10-13 CVSS v3.1
CVSS
7.8
KEV

Description

Win32k Elevation of Privilege Vulnerability

Summary dbcve.org

CVE-2021-40450 is an elevation of privilege vulnerability in the Windows win32k.sys kernel-mode driver. The vulnerability allows a low-privileged attacker to gain higher system privileges by exploiting improper validation in win32k system calls.

Mitigation

Apply the Microsoft security update for CVE-2021-40450 via Windows Update or enterprise patch management systems. Prioritize affected Windows workstations and servers as patches become available.

Patch Commit

EPSS Score

1.58%
Probability of exploitation in next 30 days
74.5th percentile

References

View on dbcve.org
Base CVE data derived from NVD (public domain). Enrichment by dbcve.org (CC-BY-4.0). Fetched via API.
Back to CVE